216.73.217.22

CVE-2024-28074

· Published 17/07/2024 15:15 · Modified 17/07/2024 15:15

Labels: CVE-2024-28074 2024-07-17CVE-2024-28074CWE-502[email protected]

Essential information

Published
17/07/2024 15:15
Modified
17/07/2024 15:15
Author
Creator
CVSS
9.6 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CVSS metrics

Description

It was discovered that a previous vulnerability was not completely fixed with SolarWinds Access Rights Manager. While some controls were implemented the researcher was able to bypass these and use a different method to exploit the vulnerability.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References